SELinux Security Module development
 help / color / mirror / Atom feed
 messages from 2026-03-31 02:14:02 to 2026-05-05 04:33:38 UTC [more...]

[PATCH ipsec-next v8 00/14] xfrm: XFRM_MSG_MIGRATE_STATE new netlink message
 2026-05-05  4:33 UTC  (8+ messages)
` [PATCH ipsec-next v8 01/14] xfrm: remove redundant assignments
` [PATCH ipsec-next v8 02/14] xfrm: add extack to xfrm_init_state
` [PATCH ipsec-next v8 03/14] xfrm: allow migration from UDP encapsulated to non-encapsulated ESP
` [PATCH ipsec-next v8 04/14] xfrm: fix NAT-related field inheritance in SA migration
` [PATCH ipsec-next v8 05/14] xfrm: rename reqid in xfrm_migrate
` [PATCH ipsec-next v8 06/14] xfrm: split xfrm_state_migrate into create and install functions
` [PATCH ipsec-next v8 07/14] xfrm: check family before comparing addresses in migrate

[PATCH v2 0/3] selinux: prune deprecated interfaces
 2026-05-05  2:35 UTC  (11+ messages)
` [PATCH v2 1/3] selinux: prune /sys/fs/selinux/checkreqprot
` [PATCH v2 2/3] selinux: prune /sys/fs/selinux/disable
` [PATCH v2 3/3] selinux: prune /sys/fs/selinux/user

[PATCH v2 1/2] bpf: add bpf_init_inode_xattr kfunc for atomic inode labeling
 2026-05-05  2:05 UTC  (8+ messages)

[PATCH] selinux: allow multiple opens of /sys/fs/selinux/policy
 2026-05-04 14:37 UTC 

[PATCH] libsepol: Fix off-by-one error in cats_ebitmap_len
 2026-05-04 13:47 UTC  (4+ messages)

[PATCH] checkpolicy: use calloc() so no need to do memset() afterwards
 2026-05-01 23:43 UTC  (2+ messages)

[PATCH v2] checkpolicy: use calloc() so no need to do memset()
 2026-05-01 23:09 UTC 

[PATCH] checkpolicy: use calloc() so no need to do memset() afterwards
 2026-05-01 22:43 UTC 

[GIT PULL] selinux/selinux-pr-20260501
 2026-05-01 20:22 UTC  (2+ messages)

[PATCH] selinux: trivial typo fix
 2026-05-01 19:14 UTC 

[PATCH] selinux: trivial typo fix
 2026-05-01 18:59 UTC 

[PATCH v3 01/14] selinux: avoid nontransitive comparison
 2026-05-01 17:15 UTC  (3+ messages)
` [PATCH v3 11/14] selinux: more strict bounds check

[PATCH v2] security,fs,nfs,net: update security_inode_listsecurity() interface
 2026-05-01 16:00 UTC  (4+ messages)
` [PATCH ported/repost "

[PATCH testsuite v2] Add tests for namespaces
 2026-05-01 12:56 UTC 

[RFC PATCH v2] selinux: implement namespace_alloc and namespace_install hooks
 2026-05-01 12:46 UTC 

[PATCH] Remove unneeded goto and its label
 2026-04-30 23:25 UTC  (3+ messages)

[PATCH] selinux: remove unneeded goto and its label
 2026-04-30 23:24 UTC 

[PATCH] selinux: tighten type and boolean validation
 2026-04-30 22:02 UTC  (3+ messages)

[PATCH v2] selinux: shrink critical section in sel_write_load()
 2026-04-30 18:36 UTC 

[PATCH] selinux: shrink critical section in sel_write_load()
 2026-04-30 18:32 UTC  (2+ messages)

[PATCH v2] restorecon: Only log error on readonly fs (bsc#1232226)
 2026-04-30 11:29 UTC 

[PATCH] restorecon: Only log error on readonly fs (bsc#1257996)
 2026-04-30 10:58 UTC  (5+ messages)

[PATCH v2 0/7] lsm: Replace security_sb_mount with granular mount hooks
 2026-04-30  0:03 UTC  (8+ messages)
` [PATCH v2 1/7] lsm: Add granular mount hooks to replace security_sb_mount
` [PATCH v2 2/7] apparmor: Remove redundant MS_MGC_MSK stripping in apparmor_sb_mount
` [PATCH v2 3/7] apparmor: Convert from sb_mount to granular mount hooks
` [PATCH v2 4/7] selinux: "
` [PATCH v2 5/7] landlock: "
` [PATCH v2 6/7] tomoyo: "
` [PATCH v2 7/7] lsm: Remove security_sb_mount and security_move_mount

[PATCH] selinux: switch two allocations to use kzalloc_objs()
 2026-04-29 20:37 UTC  (2+ messages)

[PATCH 0/3] selinux: remove deprecated interfaces
 2026-04-29 20:34 UTC  (5+ messages)
` [PATCH 1/3] selinux: remove /sys/fs/selinux/user
` [PATCH 2/3] selinux: remove /sys/fs/selinux/disable
` [PATCH 3/3] selinux: remove /sys/fs/selinux/checkreqprot

[PATCH] selinux: fix sel_kill_sb()
 2026-04-29 19:11 UTC  (2+ messages)

[PATCH v2] semanage-fcontext(8): improve -e documentation
 2026-04-29 17:47 UTC  (2+ messages)

[PATCH] libsepol: Change log level of "Failed to resolve" message
 2026-04-29 13:45 UTC 

[PATCH] libsepol: Fix memory leak in role_dominates_copy_callback
 2026-04-29 13:32 UTC  (4+ messages)
  ` [PATCH v2] "

[PATCH v4] selinux: fix avdcache auditing
 2026-04-28 22:16 UTC  (7+ messages)

[PATCH 1/3] libsepol: Fix out-of-bounds memory write in discard_tunbables()
 2026-04-28 15:49 UTC  (6+ messages)
` [PATCH 2/3] libsepol: When resolving names check if a block is abstract
` [PATCH 3/3] libsepol: Validate datum array entries for avrule blocks

[PATCH v2] Add support for UTF-8 in file context labels
 2026-04-28 13:10 UTC  (2+ messages)

[PATCH] selinux: don't reserve xattr slot when we won't fill it
 2026-04-27 23:32 UTC  (2+ messages)

[PATCH] selinux: use sk blob accessor in socket permission helpers
 2026-04-27 23:26 UTC  (2+ messages)

[PATCH] selinux: use QSTR() instead of QSTR_INIT() in init_sel_fs
 2026-04-27 22:24 UTC  (2+ messages)

[RFC PATCH 2/2] selinux: fix data race on AVC latest_notif
 2026-04-27 22:16 UTC  (2+ messages)

[RFC PATCH] libsepol: Add support for checking standalone CIL neverallow rules
 2026-04-27 20:11 UTC  (2+ messages)

[RFC PATCH 1/3] libsepol/cil: Add function to check CIL neverallows against binary policy
 2026-04-27 19:55 UTC  (3+ messages)
` [RFC PATCH 2/3] libsepol: Add a function to output CIL declarations from a "
` [RFC PATCH 3/3] secilc: Add program that checks CIL neverallow rules against "

[PATCH 1/3] libselinux: do not discard const qualifier
 2026-04-27 16:24 UTC  (3+ messages)
` [PATCH 2/3] libsemanage: Do not discard ‘const’ qualifier
` [PATCH 3/3] libsemanage: Do not use vfork()

[PATCH] policycoreutils/secon: fix discarded-qualifiers warning with glibc 2.43
 2026-04-27 12:47 UTC  (3+ messages)

[RFC PATCH 3/3] LSM: Reserve use of secmarks
 2026-04-25 19:03 UTC  (3+ messages)
` [PATCH RFC "

[RFC PATCH 2/3] LSM: Enforce exclusive hooks
 2026-04-25  0:39 UTC  (3+ messages)
` [PATCH RFC "

[PATCH v2] libsepol: policydb_read(): use a static string for policydb_str
 2026-04-24 20:40 UTC  (4+ messages)
` [PATCH v3] "

[RFC PATCH 1/3] LSM: add a flags field to the LSM hook definitions
 2026-04-24 20:29 UTC  (4+ messages)
` [PATCH RFC "

[PATCH] libselinux: Do not fall back to /selinux on a sysfs mount failure
 2026-04-23 11:43 UTC  (2+ messages)

[PATCH] mcstrans: Fix translation for uncached entries
 2026-04-21 12:45 UTC  (3+ messages)

[PATCH] checkpolicy/test: Show all options for dispol and dismod in -h
 2026-04-20 12:41 UTC 

[RFC PATCH] selinux: implement namespace_alloc and namespace_install hooks
 2026-04-16 14:15 UTC  (5+ messages)

[PATCH] seunshare: guard fallible function calls by checking retval
 2026-04-14 18:40 UTC 

[RFC PATCH testsuite] Add tests for namespaces
 2026-04-14 17:37 UTC  (2+ messages)

[PATCH] libselinux: do not log on unexpected escaped character
 2026-04-14 17:36 UTC  (3+ messages)

[PATCH 2/4] libselinux: support non-pthread build
 2026-04-14 17:35 UTC  (6+ messages)
` [PATCH 1/4] libselinux: drop unnecessary strdup(3)

[PATCH 2/8] libselinux: drop void cast on function returning void
 2026-04-14 17:34 UTC  (4+ messages)
` [PATCH 1/8] libselinux: drop duplicate include header

[PATCH 2/2] tree-wide: build shared libraries with -fPIC
 2026-04-14 17:33 UTC  (4+ messages)
` [PATCH 1/2] libselinux: prefix ruby objects with interpreter

[GIT PULL] selinux/selinux-pr-20260410
 2026-04-13 22:48 UTC  (2+ messages)

[PATCH testsuite v3] rename: explicitly test directory write checks
 2026-04-13 17:57 UTC 

[PATCH] cil_reference_guide: update specification for valid symbols
 2026-04-13 17:40 UTC 

[PATCH 0/7] lsm: Replace security_sb_mount with granular mount hooks
 2026-04-13 17:18 UTC  (7+ messages)
` [PATCH 1/7] lsm: Add granular mount hooks to replace security_sb_mount
` [PATCH 4/7] selinux: Convert from sb_mount to granular mount hooks
` [PATCH 7/7] lsm: Remove security_sb_mount and security_move_mount

[PATCH ipsec-next v7 00/14] xfrm: XFRM_MSG_MIGRATE_STATE new netlink message
 2026-04-12 11:16 UTC  (15+ messages)
` [PATCH ipsec-next v7 01/14] xfrm: remove redundant assignments
` [PATCH ipsec-next v7 02/14] xfrm: add extack to xfrm_init_state
` [PATCH ipsec-next v7 03/14] xfrm: allow migration from UDP encapsulated to non-encapsulated ESP
` [PATCH ipsec-next v7 04/14] xfrm: fix NAT-related field inheritance in SA migration
` [PATCH ipsec-next v7 05/14] xfrm: rename reqid in xfrm_migrate
` [PATCH ipsec-next v7 06/14] xfrm: split xfrm_state_migrate into create and install functions
` [PATCH ipsec-next v7 07/14] xfrm: check family before comparing addresses in migrate
` [PATCH ipsec-next v7 08/14] xfrm: add state synchronization after migration
` [PATCH ipsec-next v7 09/14] xfrm: add error messages to state migration
` [PATCH ipsec-next v7 10/14] xfrm: move encap and xuo into struct xfrm_migrate
` [PATCH ipsec-next v7 11/14] xfrm: refactor XFRMA_MTIMER_THRESH validation into a helper
` [PATCH ipsec-next v7 12/14] xfrm: add XFRM_MSG_MIGRATE_STATE for single SA migration
` [PATCH ipsec-next v7 13/14] xfrm: restrict netlink attributes for XFRM_MSG_MIGRATE_STATE
` [PATCH ipsec-next v7 14/14] xfrm: add documentation "

[PATCH testsuite v2] tests/overlay: add tests for mmap(2) and mprotect(2)
 2026-04-09 18:52 UTC  (2+ messages)

[PATCH v2 testsuite] rename: explicitly test directory write checks
 2026-04-09 17:29 UTC 

[PATCH v3] selinux: fix avdcache auditing
 2026-04-09 16:49 UTC 

[PATCH v4 0/3] Fix incorrect overlayfs mmap() and mprotect() LSM access controls
 2026-04-09 13:32 UTC  (15+ messages)
` [PATCH v4 1/3] fs: prepare for adding LSM blob to backing_file
` [PATCH v4 2/3] lsm: add backing_file LSM hooks
` [PATCH v4 3/3] selinux: fix overlayfs mmap() and mprotect() access checks

[PATCH testsuite] tmt: add setup for BPF token tests
 2026-04-09  9:05 UTC 

[PATCH testsuite] tests/overlay: add tests for mmap(2) and mprotect(2)
 2026-04-09  9:04 UTC 

[PATCH testsuite] rename: explicitly test directory write checks
 2026-04-08 20:22 UTC 

[PATCH v2] selinux: fix avdcache auditing
 2026-04-08 18:23 UTC  (3+ messages)

[PATCH] selinux: fix avdcache auditing
 2026-04-08 18:20 UTC  (3+ messages)

[PATCH ipsec-next v5 8/8] xfrm: add XFRM_MSG_MIGRATE_STATE for single SA migration
 2026-04-07 13:29 UTC  (9+ messages)
    ` [devel-ipsec] "

[PATCH 1/2] restorecond: Add -F for run in foreground
 2026-04-07  5:39 UTC  (2+ messages)
` [PATCH 2/2] restorecond.service: Use Type=simple

LSM namespacing API
 2026-04-02 21:04 UTC  (11+ messages)

[PATCH testsuite] Test f2fs SELinux support
 2026-04-02  7:07 UTC  (2+ messages)

[DEV-TOOL - DO NOT APPLY] selabel_partial_match_all
 2026-04-02  1:42 UTC  (2+ messages)

[PATCH v3 0/2] Fix incorrect overlayfs mmap() and mprotect() LSM access controls
 2026-03-31  2:13 UTC  (4+ messages)
` [PATCH v3 1/2] lsm: add backing_file LSM hooks


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox